1

Governance Risk Compliance Manager Jobs in Spring Hill, TN

Senior IT Internal Auditor

Nashville, TN ยท On-site

$81K - $101K/yr

... governance, risk management, and control processes. The Senior IT Internal Auditor is an ... risk, compliance, technology operations, data analytics, or control experience may be considered ...

Senior IT Internal Auditor

Nashville, TN ยท On-site

$81K - $101K/yr

... governance, risk management, and control processes. The Senior IT Internal Auditor is an ... risk, compliance, technology operations, data analytics, or control experience may be considered ...

Senior IT Internal Auditor

Nashville, TN ยท On-site

$100 - $125/hr

... governance, risk management, and control processes. The Senior IT Internal Auditor is an ... risk, compliance, technology operations, data analytics, or control experience may be considered ...

Manager, Information Security

Brentwood, TN ยท On-site

$150 - $200/hr

We are seeking a Manager, Information Security to own the company\'s overall security posture end ... Governance, Risk & Compliance * Own the organization\'s compliance posture for HIPAA, and ...

Showing results 21-40

Governance Risk Compliance Manager information

See Spring Hill, TN salary details

$36.2K

$89.4K

$147.6K

How much do governance risk compliance manager jobs pay per year?

As of Sep 7, 2026, the average yearly pay for governance risk compliance manager in Spring Hill, TN is $89,425.00, according to ZipRecruiter salary data. Most workers in this role earn between $65,800.00 and $109,500.00 per year, depending on experience, location, and employer.

What does a Governance Risk Compliance (GRC) manager do?

A Governance Risk Compliance (GRC) Manager is responsible for developing, implementing, and overseeing policies and procedures to ensure that an organization complies with regulatory requirements and manages risks effectively. They work closely with various departments to identify potential risks, ensure proper governance frameworks are in place, and monitor compliance with relevant laws and standards. GRC Managers play a key role in maintaining ethical practices, preventing legal issues, and helping organizations achieve their business objectives securely and efficiently.

How does a Governance Risk Compliance (GRC) manager typically collaborate with other departments to ensure effective risk management?

A GRC Manager works closely with various departments such as IT, legal, finance, and operations to identify, assess, and mitigate risks across the organization. This often involves facilitating cross-departmental meetings, guiding teams through compliance requirements, and ensuring that controls are implemented effectively. Strong communication and project management skills are essential, as GRC Managers must translate complex regulatory requirements into actionable steps for different teams. This collaborative approach helps ensure that risk management strategies are integrated into daily business processes and that compliance goals are met organization-wide.

What are the key skills and qualifications needed to thrive as a Governance Risk Compliance manager, and why are they important?

To thrive as a Governance Risk Compliance Manager, you need expertise in risk assessment, regulatory frameworks, and compliance management, typically supported by a degree in business, law, or a related field. Familiarity with GRC platforms (like RSA Archer or MetricStream), internal audit tools, and relevant certifications such as CISA, CISM, or CRISC is common. Strong analytical thinking, attention to detail, and effective communication help manage complex regulations and drive organizational compliance culture. These skills ensure the organization can proactively identify risks, comply with legal requirements, and maintain operational integrity.

What is the difference between Governance Risk Compliance Manager vs Compliance Analyst?

AspectGovernance Risk Compliance ManagerCompliance Analyst
CertificationsISO 31000, CRISC, CISACCA, CCEP, or similar
Work EnvironmentStrategic, managerial, policy-focusedOperational, detail-oriented, audit-focused
Employer & Industry UsageFinancial, healthcare, corporate sectorsRegulatory agencies, corporations, consulting firms
Search & Comparison IntentUnderstanding managerial roles in governance and riskDetailing compliance procedures and analysis

The Governance Risk Compliance Manager oversees organizational policies, risk management strategies, and compliance frameworks at a strategic level. In contrast, the Compliance Analyst focuses on implementing and monitoring compliance procedures, conducting audits, and ensuring adherence to regulations. Both roles require relevant certifications and are vital in maintaining organizational integrity, but they differ in scope and responsibilities.

Is governance risk compliance a good career?

A career as a Governance, Risk, and Compliance (GRC) Manager is considered stable and in demand, as organizations seek to manage regulatory requirements, cybersecurity threats, and operational risks. The role often requires knowledge of industry standards, certifications like CISA or CISSP, and strong analytical skills, making it a valuable and growing field in many industries.

What are popular job titles related to Governance Risk Compliance Manager jobs in Spring Hill, TN?

For Governance Risk Compliance Manager jobs in Spring Hill, TN, the most frequently searched job titles are:

What job categories do people searching Governance Risk Compliance Manager jobs in Spring Hill, TN look for?

The top searched job categories for Governance Risk Compliance Manager jobs in Spring Hill, TN are:

What cities near Spring Hill, TN are hiring for Governance Risk Compliance Manager jobs?

Cities near Spring Hill, TN with the most Governance Risk Compliance Manager job openings:

Infographic showing various Governance Risk Compliance Manager job openings in Spring Hill, TN as of August 2026, with employment types broken down into 84% Full Time, 15% Part Time, and 1% Contract. Highlights an 82% Physical, 2% Hybrid, and 16% Remote job distribution, with an average salary of $89,425 per year, or $43 per hour.

Senior IT Internal Auditor

FirstBank

Nashville, TN โ€ข On-site

$81K - $101K/yr

Full-time

Posted 8 days ago


Job description

Description
Position at FirstBank
Summary:
FirstBank Internal Audit provides independent, objective assurance and advisory services designed to add value and improve the organization's operations. Internal Audit helps the organization accomplish its objectives by applying a systematic, disciplined, risk-based approach to evaluate and improve the effectiveness of governance, risk management, and control processes.
The Senior IT Internal Auditor is an intermediate Internal Audit contributor responsible for independently executing assigned IT audit sections, evaluating technology and security evidence, developing audit conclusions, supporting issue development, and contributing to clear, objective, evidence-based reporting, while providing non-supervisory guidance to Staff Auditors as assigned but without formal people-management responsibility.
Regulatory and Professional Standards Alignment:
This role supports FirstBank Internal Audit's alignment with the Global Internal Audit Standards and applicable Federal Reserve supervisory expectations, including SR 13-1 / CA 13-1 and SR 03-5, by contributing to a risk-based, independent, objective, competent, and adequately documented internal audit function. For the IT Audit domain, responsibilities also consider applicable FFIEC Information Technology Examination Handbook guidance, including information security, architecture, infrastructure and operations, business resilience, Development, Acquisition, and Maintenance, cybersecurity, Technology Service Provider oversight, data governance, privacy, customer information safeguards, and related IT control expectations commensurate with role level.
Essential Duties and Responsibilities:
  • Execute assigned IT audit engagements or audit sections, including information security, IT general controls, application controls, infrastructure, operations, cybersecurity, privacy, customer information safeguards, business resilience, data governance, Technology Service Provider oversight, third-party technology risk, Development, Acquisition, and Maintenance, project governance, and special audits, in accordance with Global Internal Audit Standards and FirstBank Internal Audit methodology.
  • Perform risk-based IT audit procedures, including risk assessment, walkthroughs, process and control documentation, control testing, technical evidence evaluation, system-generated data analysis, configuration and log review, and documentation of results.
  • Evaluate technology risks, control design, operating effectiveness, compensating controls, root causes, and improvement opportunities, and escalate potential findings and recommendations to Internal Audit leadership for review before discussion with business owners, as appropriate.
  • Prepare clear, accurate, objective, constructive, timely, and evidence-based workpaper documentation, issue summaries, and draft report content that support IT audit conclusions and identify areas requiring corrective action.
  • Apply strong working knowledge of IT risk and control concepts, audit methodology, banking technology operations, information security, cybersecurity, regulatory expectations, and financial services industry practices.
  • Provide non-supervisory guidance to Staff Auditors on audit methodology, technology control testing, evidence sufficiency, documentation expectations, and issue development.
  • Support IT audit planning activities, including preliminary risk identification, process scoping input, issue validation, follow-up activities, continuous monitoring, emerging technology risk awareness, and coordination with operational audit teams, as assigned.
  • Maintain confidentiality of Bank, customer, employee, technology, security, and control information as required by law, regulation, professional standards, and Bank policy.
  • Model sound IT audit judgment, communicate status and issues timely, support consistent workpaper quality, and help Staff Auditors understand methodology expectations without assuming formal supervisory responsibility.
  • Perform other duties and responsibilities as assigned by Internal Audit leadership, consistent with the role's senior auditor level, independence requirements, and FirstBank policies.

Education and Experience:
  • Generally 4+ years of relevant audit, information technology, information security, banking, risk, compliance, technology operations, data analytics, or control experience may be considered based on demonstrated IT audit judgment, technology control evaluation skills, regulatory awareness, workpaper quality, and readiness to perform senior-level responsibilities.
  • Bachelor's degree in information systems, computer science, cybersecurity, data analytics, accounting, finance, business, risk management, or another role-relevant field required.
  • CISA preferred; CIA, Security+, CISSP, CISM, CRISC, CDMP, CompTIA Data+, or other role-relevant financial services, technology, information security, risk, compliance, accounting, or control certifications are beneficial. Progress toward a relevant certification is encouraged for employees who have not yet obtained one.
  • Financial institution, public company, regulated industry, IT operations, information security, internal audit, external audit, risk management, compliance, technology, analytics, or control experience is beneficial.

Skills and Abilities
  • Ability to apply audit methodology in a banking technology environment, including evaluating IT process-level risks, control design and operating effectiveness, regulatory expectations, issue remediation, and evidence sufficiency across assigned IT audit areas.
  • Strong working knowledge of IT general controls, cybersecurity risk, information security governance, privacy and customer information safeguards, data classification, access management, privileged access, change management, vulnerability management, incident response, backup and recovery, business continuity, disaster recovery, Technology Service Provider oversight, third-party technology risk, data governance, Development, Acquisition, and Maintenance, system implementation controls, cloud services, APIs, automation, zero trust concepts, and technology architecture themes.
  • Ability to manage assigned work, deadlines, priorities, documentation quality, and escalation responsibilities in a changing technology and regulatory environment.
  • Ability to effectively work both independently and as part of a team contributing to a positive and dynamic culture of partnership and collaboration.
  • Ability to apply professional skepticism, sound judgment, integrity, confidentiality, independence, and objectivity in technology audit work.
  • Ability to read, interpret, analyze, and evaluate policies, procedures, standards, laws, regulations, supervisory guidance, business process documentation, technical evidence, data, and control information.
  • Ability to communicate clearly, professionally, and constructively with business partners, technology management, information security, risk management, Internal Audit leadership, external auditors, regulators, and other stakeholders.
  • Commitment to continuous learning, audit quality, regulatory awareness, professional development, and FirstBank policies and procedures.

FirstBank does not accept unsolicited resumes from agencies and staffing firms. Recruitment agencies and consultants may not submit resumes directly to managers. FirstBank will not pay fees to any third-party agency or company that does not have a signed agreement as an approved vendor.FirstBank in an Equal Opportunity Employer, including disability.